πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
25.8K subscribers
89.2K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
ATENTIONβ€Ό New - CVE-2013-7482

The reflex-gallery plugin before 1.4.3 for WordPress has XSS.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2008-7321

The tubepress plugin before 1.6.5 for WordPress has XSS.

πŸ“– Read

via "National Vulnerability Database".
πŸ•΄ Texas Towns Recover, But Local Governments Have Little Hope For Respite from Ransomware πŸ•΄

Their struggles underscore the difficulties for small towns in dealing with cyberattacks.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ LinkedIn Details Features of Fight Against Fakes πŸ•΄

A recent blog post explains how the social network is fighting to protect its users from interactions with fake accounts.

πŸ“– Read

via "Dark Reading: ".
πŸ” Android Security Bulletin August 2019: What you need to know πŸ”

Another month is here, and Android finds itself with a mixture of critical and high vulnerabilities.

πŸ“– Read

via "Security on TechRepublic".
πŸ•΄ Endgame Boosts Apple Security to Be Commensurate with Windows Security πŸ•΄

Gone are the days when users could take refuge from Windows threats with Apple devices, as malware writers are exploiting OSX and iOS with real vigor, says Mark Dufresne, VP of R&D at Endgame. And though it's taken a while, Mac security has achieved parity with Windows so that Apple users need no longer settle for "protected enough."

πŸ“– Read

via "Dark Reading: ".
πŸ” How Organizations Can Stay Ahead of Changing Privacy Laws πŸ”

GDPR, CCPA, PIPEDA. Privacy legislation is constantly changing these days. We asked 26 business leaders, security pros, and attorneys how to best stay ahead of changing privacy laws.

πŸ“– Read

via "Subscriber Blog RSS Feed ".
πŸ•΄ Threat Intelligence Gateways: A Useful Adjunct to Overworked Perimeter Security πŸ•΄

Comparative research shows the relative strengths and weaknesses of five TIG vendors and which kinds of security organization will reap the most benefit.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ Make DNS a Cornerstone of Your Cyber Security Arsenal πŸ•΄

Better known for their essential role in networking, Domain Name Servers should be tapped as a means to identify - and shut down - suspicious or destructive activity, according to Anthony James, VP of Marketing for Infoblox. He also explains how to combine DNS with DHCP and IP address management to improve an organization's security.

πŸ“– Read

via "Dark Reading: ".
❌ Google Launches Open-Source Browser Extension for Ad Transparency ❌

Google introduced a new initiative that it hopes will fight shady online advertising practices such as digital fingerprinting.

πŸ“– Read

via "Threatpost".
⚠ Humans may have been listening to you via your Xbox ⚠

Microsoft has given audio clips to contractors for years, but it says it recently stopped. ... For the most part.

πŸ“– Read

via "Naked Security".
ATENTIONβ€Ό New - CVE-2014-10394

The rich-counter plugin before 1.2.0 for WordPress has JavaScript injection via a User-Agent header.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2014-10392

The cforms2 plugin before 10.2 for WordPress has XSS.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2014-10391

The wp-support-plus-responsive-ticket-system plugin before 4.1 for WordPress has JavaScript injection.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2014-10390

The wp-support-plus-responsive-ticket-system plugin before 4.2 for WordPress has directory traversal.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2014-10389

The wp-support-plus-responsive-ticket-system plugin before 4.2 for WordPress has incorrect authentication.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2014-10388

The wp-support-plus-responsive-ticket-system plugin before 4.2 for WordPress has full path disclosure.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2014-10387

The wp-support-plus-responsive-ticket-system plugin before 4.2 for WordPress has SQL injection.

πŸ“– Read

via "National Vulnerability Database".
πŸ•΄ Microsoft Tops Phishers' Favorite Brands as Facebook Spikes πŸ•΄

Microsoft remains the favorite brand to spoof in phishing campaigns, but more attackers are impersonating Facebook.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ Time to Get Smarter About Threat Intel πŸ•΄

Bad actors move faster than threat intelligence feeds and the infosec pros who monitor them, notes Joakim Kennedy, Threat Intel Manager for Anomali Research. Organizations need to establish a dedicated team to manage threat intel, and an adequate budget. Kennedy also encourages intelligence sharing as part of a stepped-up protection strategy.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ Aviation Faces Increasing Cybersecurity Scrutiny πŸ•΄

Some aviation experts and security researchers are trying to foster closer alliances for securing airplane networks.

πŸ“– Read

via "Dark Reading: ".